Access member only content, take part in discussions with comments on blogs, news and reviews and receive all the latest security industry news directly to your inbox. Join now for free.
A confirmation email has been sent to your email address - SUPPLIED EMAIL HERE. Please click on the link in the email to verify your email address. You need to verify your email before you can start posting.
If you do not receive your confirmation email within the next few minutes, it may be because the email has been captured by a junk mail filter. Please ensure you add the domain @scmagazine.com.au to your white-listed senders.
Apple has issued a new version of its QuickTime video player for Windows to address a "critical" vulnerability that could allow cybercriminals to execute arbitrary code on an affected system. QuickTime 7.6.7 resolves a stack buffer overflow vulnerability in QuickTime's error logging process, according to Apple's advisory. Because of the flaw, viewing a maliciously crafted movie file could lead to unexpected application termination or arbitrary code execution. The flaw impacts Windows 7, Vista, and XP SP 2 and 3, according to Apple. The issue does not affect Mac OS X systems. Researchers earlier this month discovered two movie files on file-sharing networks that were taking advantage of QuickTime Player to download malware from malicious websites. But the attack, which used .MOV files that masqueraded as the new Angelina Jolie film Salt, did not take advantage of a flaw but instead relied on social engineering to trick users into downloading the malware, Apple has said. See original article on scmagazineus.com
To begin commenting right away, you can log in below or register an account if you don't yet have one. Please read our guidelines on commenting. Offending posts will be removed and your access may be suspended. Abusive or obscene language will not be tolerated. The comments below do not necessarily reflect the views or opinions of SC Magazine, Haymarket Media or its employees.